Flexible Redactable Signature Schemes for Trees
The redactable signature scheme introduced at VLDB'08 by Kundu and Bertino does not always preserve the structural integrity of the tree signed. In particular, they show how redaction of non-leaves promotes descendants and allows a third party to add new edges to the signed tree. This alters the semantic meaning of the tree and is not acceptable in certain scenarios. The authors generalize the model, such that it offers the signer the flexibility to sign trees where every node is transparently redactable. This includes intermediates nodes, i.e., to allow redacting a hierarchy, but also the tree's root.